Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m62w-37gh-m9j3

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.7

Описание

Dotclear before 2.10.3, when the Host header is not part of the web server routing process, allows remote attackers to modify the password reset address link via the HTTP Host header.

Dotclear before 2.10.3, when the Host header is not part of the web server routing process, allows remote attackers to modify the password reset address link via the HTTP Host header.

EPSS

Процентиль: 51%
0.00276
Низкий

3.7 Low

CVSS3

Связанные уязвимости

CVSS3: 3.7
ubuntu
около 9 лет назад

Dotclear before 2.10.3, when the Host header is not part of the web server routing process, allows remote attackers to modify the password reset address link via the HTTP Host header.

CVSS3: 3.7
nvd
около 9 лет назад

Dotclear before 2.10.3, when the Host header is not part of the web server routing process, allows remote attackers to modify the password reset address link via the HTTP Host header.

CVSS3: 3.7
debian
около 9 лет назад

Dotclear before 2.10.3, when the Host header is not part of the web se ...

EPSS

Процентиль: 51%
0.00276
Низкий

3.7 Low

CVSS3